首页> 外文期刊>The Business Lawyer >European Union Data Privacy Law Reform: General Data Protection Regulation, Privacy Shield, and the Right to Delisting
【24h】

European Union Data Privacy Law Reform: General Data Protection Regulation, Privacy Shield, and the Right to Delisting

机译:欧盟数据隐私法改革:通用数据保护法规,隐私保护和退市权

获取原文
获取原文并翻译 | 示例
       

摘要

The European Union has finally adopted data protection law reform, and now is the time for companies to adapt to the new landscape before the GDPR applies in May 2018. Many of the GDPR's provisions address companies' compliance obligations and require greater accountability and recordkeeping. Some provisions may require changes to internal organization (e.g., DPOs, DPIAs, and procedures that allow for proper data breach notifications). The United Kingdom's DPA issued a checklist of steps to prepare for the GDPR. These include raising awareness, documenting held personal data, reviewing privacy notices to bring them into conformity with the GDPR, checking that procedures cover all data subject rights and adapting them to cover handling data subject requests, identifying legal bases for processing, implementing systems to verify ages of children and to gather parental or guardian consent, implementing procedures regarding data breaches, designating DPOs if required, and identifying any applicable supervisory authorities. With respect to cross-border personal data transfers, companies may now self-certify under the Privacy Shield. They should monitor developments regarding the right to delisting, as this affects access to information on the Internet. In conclusion, it is clear that EU data protection and privacy law reform over the past year will necessarily require adaptation by companies and others for years to come.
机译:欧盟终于通过了数据保护法改革,现在是公司适应新形势的时候了,GDPR于2018年5月生效。许多GDPR条款都涉及公司的合规义务,需要更大的责任感和记录保存。某些规定可能需要更改内部组织(例如,DPO,DPIA和允许适当的数据泄露通知的程序)。英国的DPA发布了准备GDPR的步骤清单。这些措施包括提高认识,记录保留的个人数据,审查隐私声明以使其符合GDPR,检查程序是否涵盖所有数据主体权利并对其进行调整以适应处理数据主体请求,确定处理的法律依据,实施系统以进行验证的年龄,并征得父母或监护人的同意,执行有关数据泄露的程序,在需要时指定DPO,并确定任何适用的监管机构。关于跨境个人数据传输,公司现在可以在“隐私保护盾”下进行自我认证。他们应该监视有关除名权的发展,因为这会影响对Internet信息的访问。总之,很明显,在过去的一年中,欧盟的数据保护和隐私法改革必将需要公司和其他机构在未来几年进行调整。

著录项

  • 来源
    《The Business Lawyer》 |2017年第1期|221-233|共13页
  • 作者

    W. Gregory Voss;

  • 作者单位

    Toulouse University, Toulouse Business School,Institut de Recherche en Droit Europeen International et Compare (IRDE1C) in Toulouse, France;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

  • 入库时间 2022-08-18 04:04:57

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号